A vulnerability was found in WooCommerce Payment Gateway for PayPal on WooCommerce Plugin up to 9.2.0 on WordPress. It has been classified as problematic . Affected is an unknown function of the component PayPal Return Handler . This manipulation causes insufficient verification of data authenticity. This vulnerability is handled as CVE-2026-16621 . The attack can be initiated remotely. There is not any exploit available. Upgrading the affected component is recommended.